Security update for the Linux Kernel
The SUSE Linux Enterprise 15 SP6 kernel was updated to fix various security issues: The following security issues were fixed: - CVE-2026-46056: Bluetooth: hci_event: fix potential UAF in SSP passkey handlers (bsc#1267435). - CVE-2026-46193: xfrm: ah: account for ESN high bits in async callbacks (bsc#1267656). - CVE-2026-46324: netfilter: nf_tables: Introduce functions freeing nft_hook objects (bsc#1267995). - CVE-2026-52967: smb/client: fix possible infinite loop and oob read in symlink_data() (bsc#1269181). - CVE-2026-52986: netfilter: nf_conntrack_sip: don't use simple_strtoul (bsc#1269289). - CVE-2026-53050: quota: Fix race of dquot_scan_active() with quota deactivation (bsc#1269188). - CVE-2026-53129: fs/mbcache: cancel shrink work before destroying the cache (bsc#1269633). - CVE-2026-53131: netfilter: require Ethernet MAC header before using eth_hdr() (bsc#1269773). - CVE-2026-53224: sctp: validate embedded INIT chunk and address list lengths in cookie (bsc#1269997). - CVE-2026-53246: sctp: validate cached peer INIT chunk length in COOKIE_ECHO processing (bsc#1269988). - CVE-2026-53250: xsk: cache csum_start/csum_offset to fix TOCTOU in xsk_skb_metadata() (bsc#1269808). - CVE-2026-53262: l2tp: pppol2tp: hold reference to session in pppol2tp_ioctl() (bsc#1270000). - CVE-2026-53267: netfilter: nft_ct: bail out on template ct in get eval (bsc#1269577). - CVE-2026-53354: arm64: errata: Mitigate TLBI errata on various Arm CPUs (bsc#1270230). - CVE-2026-53375: drm/amdgpu/vce: Prevent partial address patches (bsc#1271899). - CVE-2026-53388: fuse: re-lock request before replacing page cache folio (bsc#1271825). - CVE-2026-53391: NFSv4/pNFS: reject zero-length r_addr in nfs4_decode_mp_ds_addr (bsc#1271904). - CVE-2026-53402: fbdev: fbcon: fix out-of-bounds read in err_out of (bsc#1271908). - CVE-2026-63794: KVM: SVM: Fix page overflow in sev_dbg_crypt() for ENCRYPT path (bsc#1271964). - CVE-2026-63802: blk-cgroup: fix UAF in __blkcg_rstat_flush() (bsc#1272282). - CVE-2026-63806: KVM: Replace guest-triggerable BUG_ON() in ioeventfd datamatch with get_unaligned() (bsc#1272268). - CVE-2026-63807: KVM: x86/mmu: Ensure hugepage is in by slot before checking max mapping level (bsc#1272263). - CVE-2026-63824: KEYS: fix overflow in keyctl_pkey_params_get_2() (bsc#1272180). - CVE-2026-63826: fbdev: fix use-after-free in store_modes() (bsc#1272183). - CVE-2026-63829: net: ip_gre: require CAP_NET_ADMIN in the device netns for changelink (bsc#1272176). - CVE-2026-63884: drm/i915: Fix potential UAF in TTM object purge (bsc#1272573). - CVE-2026-63893: thunderbolt: property: Reject u32 wrap in tb_property_entry_valid() (bsc#1272607). - CVE-2026-63912: xfrm: esp: restore combined single-frag length gate (bsc#1272836). - CVE-2026-63917: ip6: vti: Use ip6_tnl.net in vti6_changelink() (bsc#1272904). - CVE-2026-63919: xfrm: input: hold netns during deferred transport reinjection (bsc#1272907). - CVE-2026-63921: ip6: vti: Use ip6_tnl.net in vti6_siocdevprivate() (bsc#1272918). - CVE-2026-63922,CVE-2026-63924: ipv6: exthdrs: refresh nh after handling HAO option (bsc#1272855). - CVE-2026-63946: Bluetooth: ISO: fix UAF in iso_recv_frame (bsc#1272665). - CVE-2026-63952: memfd: deny writeable mappings when implying SEAL_WRITE (bsc#1272468). - CVE-2026-63968: ipv6: fix possible infinite loop in fib6_select_path() (bsc#1272466). - CVE-2026-63971: sctp: fix race between sctp_wait_for_connect and peeloff (bsc#1272678). - CVE-2026-63975: Bluetooth: L2CAP: Fix possible crash on l2cap_ecred_conn_rsp (bsc#1272694). - CVE-2026-63984: ipv6: rpl: fix hdrlen overflow in ipv6_rpl_srh_decompress() (bsc#1272865). - CVE-2026-63994: tunnels: load network headers after skb_cow() in iptunnel_pmtud_build_icmp() (bsc#1273035). - CVE-2026-64106: KVM: arm64: vgic-its: Reject restored DTE with out-of-range num_eventid_bits (bsc#1272242). - CVE-2026-64189: netfilter: ipset: fix race between dump and ip_set_list resize (bsc#1272207). - CVE-2026-64560: posix-cpu-timers: Prevent UAF caused by non-leader exec() race (bsc#1273004). - CVE-2026-64561: KVM: x86: Check for invalid/obsolete root *after* making MMU pages available (bsc#1273231). - CVE-2026-64564: sctp: don't free the ASCONF's own transport in DEL-IP processing (bsc#1274072). - CVE-2026-64600: xfs: resample the data fork mapping after cycling ILOCK (bsc#1271526). The following non security issues were fixed: - Drivers: hv: vmbus: Set DMA coherent mask for VMBus devices (git-fixes). - hrtimers: Introduce hrtimer_setup() to replace hrtimer_init() (bsc#1271912). - ice: don't check has_ready_bitmap in E810 functions (bsc#1269981). - ice: factor out ice_ptp_rebuild_owner() (bsc#1269981). - ice: fix PTP Call Trace during PTP release (bsc#1269981). - ice: Fix PTP NULL pointer dereference during VSI rebuild (bsc#1269981). - ice: introduce PTP state machine (bsc#1269981). - ice: pass reset type to PTP reset functions (bsc#1269981). - ice: rename ice_ptp_tx_cfg_intr (bsc#1269981). - ice: rename verify_cached to has_ready_bitmap (bsc#1269981). - ice: stop destroying and reinitalizing Tx tracker during reset (bsc#1269981). - KVM: SVM: Mark VMCB_NPT as dirty on nested VMRUN (git-fixes). - KVM: SVM: Mark VMCB_PERM_MAP as dirty on nested VMRUN (git-fixes). - KVM: x86/mmu: Fix use-after-free on vendor module reload (git-fixes). - KVM: x86/mmu: Preserve nested TDP shadow page tables if they are used as roots (git-fixes). - KVM: x86/xen: Fix cleanup logic in emulation of Xen schedop poll hypercalls (git-fixes). - KVM: x86: Fix SRCU list traversal in kvm_fire_mask_notifiers() (git-fixes). - KVM: x86: Fix VM hard lockup after prolonged inactivity with periodic HV timer (git-fixes). - KVM: x86: hyper-v: Bound the bank index when querying sparse banks (git-fixes). - KVM: x86: hyper-v: Validate all GVAs during PV TLB flush (git-fixes). - mkspec-dtb: Skip missing DTBs. - net/sched: cls_api: Handle TC_ACT_CONSUMED in tcf_qevent_handle (bsc#1271866). - net: mana: Add Interrupt Moderation support (bsc#1271368). - net: mana: Return error code from mana_create_rxq() (git-fixes). - net: mana: Validate the packet length reported by the NIC (git-fixes). - pkspec-dtb: Fix dtb-al rename. - posix-cpu-timers: Cleanup the firing logic (bsc#1271912). - posix-cpu-timers: Correctly update timer status in posix_cpu_timer_del() (bsc#1271912). - posix-cpu-timers: Do not arm SIGEV_NONE timers (bsc#1271912). - posix-cpu-timers: Handle interval timers correctly in timer_get() (bsc#1271912). - posix-cpu-timers: Handle SIGEV_NONE timers correctly in timer_get() (bsc#1271912). - posix-cpu-timers: Handle SIGEV_NONE timers correctly in timer_set() (bsc#1271912). - posix-cpu-timers: Make k_itimer::it_active consistent (bsc#1271912). - posix-cpu-timers: Remove incorrect comment in posix_cpu_timer_set() (bsc#1271912). - posix-cpu-timers: Replace old expiry retrieval in posix_cpu_timer_set() (bsc#1271912). - posix-cpu-timers: Simplify posix_cpu_timer_set() (bsc#1271912). - posix-cpu-timers: Split up posix_cpu_timer_get() (bsc#1271912). - posix-cpu-timers: Use @now instead of @val for clarity (bsc#1271912). - posix-timers: Add proper state tracking (bsc#1271912). - posix-timers: Avoid direct access to hrtimer clockbase (bsc#1271912). - posix-timers: Clarify posix_timer_fn() comments (bsc#1271912). - posix-timers: Clear overrun in common_timer_set() (bsc#1271912). - posix-timers: Consolidate signal queueing (bsc#1271912). - posix-timers: Consolidate timer setup (bsc#1271912). - posix-timers: Cure si_sys_private race (bsc#1271912). - posix-timers: Document common_clock_get() correctly (bsc#1271912). - posix-timers: Expand timer_arm() callbacks with a boolean return value (bsc#1271912). - posix-timers: Polish coding style in a few places (bsc#1271912). - posix-timers: Retrieve interval in common timer_settime() code (bsc#1271912). - RDMA/mana_ib: initialize err for empty send WR lists (git-fixes). - sctp: validate embedded address parameter length (git-fixes). - time: Switch to hrtimer_setup() (bsc#1271912).
02 / AFFECTED SOFTWARE
Affected packages
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
The SUSE Linux Enterprise 15 SP6 kernel was updated to fix various security issues: The following security issues were fixed: - CVE-2026-46056: Bluetooth: hci_event: fix potential UAF in SSP passkey handlers (bsc#1267435). - CVE-2026-46193: xfrm: ah: account for ESN high bits in async callbacks (bsc#1267656). - CVE-2026-46324: netfilter: nf_tables: Introduce functions freeing nft_hook objects (bsc#1267995). - CVE-2026-52967: smb/client: fix possible infinite loop and oob read in symlink_data() (bsc#1269181). - CVE-2026-52986: netfilter: nf_conntrack_sip: don't use simple_strtoul (bsc#1269289). - CVE-2026-53050: quota: Fix race of dquot_scan_active() with quota deactivation (bsc#1269188). - CVE-2026-53129: fs/mbcache: cancel shrink work before destroying the cache (bsc#1269633). - CVE-2026-53131: netfilter: require Ethernet MAC header before using eth_hdr() (bsc#1269773). - CVE-2026-53224: sctp: validate embedded INIT chunk and address list lengths in cookie (bsc#1269997). - CVE-2026-53246: sctp: validate cached peer INIT chunk length in COOKIE_ECHO processing (bsc#1269988). - CVE-2026-53250: xsk: cache csum_start/csum_offset to fix TOCTOU in xsk_skb_metadata() (bsc#1269808). - CVE-2026-53262: l2tp: pppol2tp: hold reference to session in pppol2tp_ioctl() (bsc#1270000). - CVE-2026-53267: netfilter: nft_ct: bail out on template ct in get eval (bsc#1269577). - CVE-2026-53354: arm64: errata: Mitigate TLBI errata on various Arm CPUs (bsc#1270230). - CVE-2026-53375: drm/amdgpu/vce: Prevent partial address patches (bsc#1271899). - CVE-2026-53388: fuse: re-lock request before replacing page cache folio (bsc#1271825). - CVE-2026-53391: NFSv4/pNFS: reject zero-length r_addr in nfs4_decode_mp_ds_addr (bsc#1271904). - CVE-2026-53402: fbdev: fbcon: fix out-of-bounds read in err_out of (bsc#1271908). - CVE-2026-63794: KVM: SVM: Fix page overflow in sev_dbg_crypt() for ENCRYPT path (bsc#1271964). - CVE-2026-63802: blk-cgroup: fix UAF in __blkcg_rstat_flush() (bsc#1272282). - CVE-2026-63806: KVM: Replace guest-triggerable BUG_ON() in ioeventfd datamatch with get_unaligned() (bsc#1272268). - CVE-2026-63807: KVM: x86/mmu: Ensure hugepage is in by slot before checking max mapping level (bsc#1272263). - CVE-2026-63824: KEYS: fix overflow in keyctl_pkey_params_get_2() (bsc#1272180). - CVE-2026-63826: fbdev: fix use-after-free in store_modes() (bsc#1272183). - CVE-2026-63829: net: ip_gre: require CAP_NET_ADMIN in the device netns for changelink (bsc#1272176). - CVE-2026-63884: drm/i915: Fix potential UAF in TTM object purge (bsc#1272573). - CVE-2026-63893: thunderbolt: property: Reject u32 wrap in tb_property_entry_valid() (bsc#1272607). - CVE-2026-63912: xfrm: esp: restore combined single-frag length gate (bsc#1272836). - CVE-2026-63917: ip6: vti: Use ip6_tnl.net in vti6_changelink() (bsc#1272904). - CVE-2026-63919: xfrm: input: hold netns during deferred transport reinjection (bsc#1272907). - CVE-2026-63921: ip6: vti: Use ip6_tnl.net in vti6_siocdevprivate() (bsc#1272918). - CVE-2026-63922,CVE-2026-63924: ipv6: exthdrs: refresh nh after handling HAO option (bsc#1272855). - CVE-2026-63946: Bluetooth: ISO: fix UAF in iso_recv_frame (bsc#1272665). - CVE-2026-63952: memfd: deny writeable mappings when implying SEAL_WRITE (bsc#1272468). - CVE-2026-63968: ipv6: fix possible infinite loop in fib6_select_path() (bsc#1272466). - CVE-2026-63971: sctp: fix race between sctp_wait_for_connect and peeloff (bsc#1272678). - CVE-2026-63975: Bluetooth: L2CAP: Fix possible crash on l2cap_ecred_conn_rsp (bsc#1272694). - CVE-2026-63984: ipv6: rpl: fix hdrlen overflow in ipv6_rpl_srh_decompress() (bsc#1272865). - CVE-2026-63994: tunnels: load network headers after skb_cow() in iptunnel_pmtud_build_icmp() (bsc#1273035). - CVE-2026-64106: KVM: arm64: vgic-its: Reject restored DTE with out-of-range num_eventid_bits (bsc#1272242). - CVE-2026-64189: netfilter: ipset: fix race between dump and ip_set_list resize (bsc#1272207). - CVE-2026-64560: posix-cpu-timers: Prevent UAF caused by non-leader exec() race (bsc#1273004). - CVE-2026-64561: KVM: x86: Check for invalid/obsolete root *after* making MMU pages available (bsc#1273231). - CVE-2026-64564: sctp: don't free the ASCONF's own transport in DEL-IP processing (bsc#1274072). - CVE-2026-64600: xfs: resample the data fork mapping after cycling ILOCK (bsc#1271526). The following non security issues were fixed: - Drivers: hv: vmbus: Set DMA coherent mask for VMBus devices (git-fixes). - hrtimers: Introduce hrtimer_setup() to replace hrtimer_init() (bsc#1271912). - ice: don't check has_ready_bitmap in E810 functions (bsc#1269981). - ice: factor out ice_ptp_rebuild_owner() (bsc#1269981). - ice: fix PTP Call Trace during PTP release (bsc#1269981). - ice: Fix PTP NULL pointer dereference during VSI rebuild (bsc#1269981). - ice: introduce PTP state machine (bsc#1269981). - ice: pass reset type to PTP reset functions (bsc#1269981). - ice: rename ice_ptp_tx_cfg_intr (bsc#1269981). - ice: rename verify_cached to has_ready_bitmap (bsc#1269981). - ice: stop destroying and reinitalizing Tx tracker during reset (bsc#1269981). - KVM: SVM: Mark VMCB_NPT as dirty on nested VMRUN (git-fixes). - KVM: SVM: Mark VMCB_PERM_MAP as dirty on nested VMRUN (git-fixes). - KVM: x86/mmu: Fix use-after-free on vendor module reload (git-fixes). - KVM: x86/mmu: Preserve nested TDP shadow page tables if they are used as roots (git-fixes). - KVM: x86/xen: Fix cleanup logic in emulation of Xen schedop poll hypercalls (git-fixes). - KVM: x86: Fix SRCU list traversal in kvm_fire_mask_notifiers() (git-fixes). - KVM: x86: Fix VM hard lockup after prolonged inactivity with periodic HV timer (git-fixes). - KVM: x86: hyper-v: Bound the bank index when querying sparse banks (git-fixes). - KVM: x86: hyper-v: Validate all GVAs during PV TLB flush (git-fixes). - mkspec-dtb: Skip missing DTBs. - net/sched: cls_api: Handle TC_ACT_CONSUMED in tcf_qevent_handle (bsc#1271866). - net: mana: Add Interrupt Moderation support (bsc#1271368). - net: mana: Return error code from mana_create_rxq() (git-fixes). - net: mana: Validate the packet length reported by the NIC (git-fixes). - pkspec-dtb: Fix dtb-al rename. - posix-cpu-timers: Cleanup the firing logic (bsc#1271912). - posix-cpu-timers: Correctly update timer status in posix_cpu_timer_del() (bsc#1271912). - posix-cpu-timers: Do not arm SIGEV_NONE timers (bsc#1271912). - posix-cpu-timers: Handle interval timers correctly in timer_get() (bsc#1271912). - posix-cpu-timers: Handle SIGEV_NONE timers correctly in timer_get() (bsc#1271912). - posix-cpu-timers: Handle SIGEV_NONE timers correctly in timer_set() (bsc#1271912). - posix-cpu-timers: Make k_itimer::it_active consistent (bsc#1271912). - posix-cpu-timers: Remove incorrect comment in posix_cpu_timer_set() (bsc#1271912). - posix-cpu-timers: Replace old expiry retrieval in posix_cpu_timer_set() (bsc#1271912). - posix-cpu-timers: Simplify posix_cpu_timer_set() (bsc#1271912). - posix-cpu-timers: Split up posix_cpu_timer_get() (bsc#1271912). - posix-cpu-timers: Use @now instead of @val for clarity (bsc#1271912). - posix-timers: Add proper state tracking (bsc#1271912). - posix-timers: Avoid direct access to hrtimer clockbase (bsc#1271912). - posix-timers: Clarify posix_timer_fn() comments (bsc#1271912). - posix-timers: Clear overrun in common_timer_set() (bsc#1271912). - posix-timers: Consolidate signal queueing (bsc#1271912). - posix-timers: Consolidate timer setup (bsc#1271912). - posix-timers: Cure si_sys_private race (bsc#1271912). - posix-timers: Document common_clock_get() correctly (bsc#1271912). - posix-timers: Expand timer_arm() callbacks with a boolean return value (bsc#1271912). - posix-timers: Polish coding style in a few places (bsc#1271912). - posix-timers: Retrieve interval in common timer_settime() code (bsc#1271912). - RDMA/mana_ib: initialize err for empty send WR lists (git-fixes). - sctp: validate embedded address parameter length (git-fixes). - time: Switch to hrtimer_setup() (bsc#1271912).
05 / REFERENCES
Further evidence
- https://bugzilla.suse.com/1185845
- https://bugzilla.suse.com/1243603
- https://bugzilla.suse.com/1253262
- https://bugzilla.suse.com/1258718
- https://bugzilla.suse.com/1260347
- https://bugzilla.suse.com/1262573
- https://bugzilla.suse.com/1262745
- https://bugzilla.suse.com/1262771
- https://bugzilla.suse.com/1263010
- https://bugzilla.suse.com/1263068
- https://bugzilla.suse.com/1263718
- https://bugzilla.suse.com/1263788
- https://bugzilla.suse.com/1264013
- https://bugzilla.suse.com/1264053
- https://bugzilla.suse.com/1264076
- https://bugzilla.suse.com/1264089
- https://bugzilla.suse.com/1264090
- https://bugzilla.suse.com/1264558
- https://bugzilla.suse.com/1264779
- https://bugzilla.suse.com/1264795
- https://bugzilla.suse.com/1265308
- https://bugzilla.suse.com/1266238
- https://bugzilla.suse.com/1266758
- https://bugzilla.suse.com/1266850
- https://bugzilla.suse.com/1266890
- https://bugzilla.suse.com/1266913
- https://bugzilla.suse.com/1267375
- https://bugzilla.suse.com/1267384
- https://bugzilla.suse.com/1267435
- https://bugzilla.suse.com/1267584
- https://bugzilla.suse.com/1267596
- https://bugzilla.suse.com/1267656
- https://bugzilla.suse.com/1267682
- https://bugzilla.suse.com/1267715
- https://bugzilla.suse.com/1267995
- https://bugzilla.suse.com/1268029
- https://bugzilla.suse.com/1268307
- https://bugzilla.suse.com/1269181
- https://bugzilla.suse.com/1269188
- https://bugzilla.suse.com/1269289
- https://bugzilla.suse.com/1269383
- https://bugzilla.suse.com/1269512
- https://bugzilla.suse.com/1269513
- https://bugzilla.suse.com/1269577
- https://bugzilla.suse.com/1269633
- https://bugzilla.suse.com/1269773
- https://bugzilla.suse.com/1269808
- https://bugzilla.suse.com/1269981
- https://bugzilla.suse.com/1269988
- https://bugzilla.suse.com/1269997
- https://bugzilla.suse.com/1270000
- https://bugzilla.suse.com/1270230
- https://bugzilla.suse.com/1271349
- https://bugzilla.suse.com/1271368
- https://bugzilla.suse.com/1271526
- https://bugzilla.suse.com/1271825
- https://bugzilla.suse.com/1271866
- https://bugzilla.suse.com/1271899
- https://bugzilla.suse.com/1271904
- https://bugzilla.suse.com/1271908
- https://bugzilla.suse.com/1271912
- https://bugzilla.suse.com/1271964
- https://bugzilla.suse.com/1272176
- https://bugzilla.suse.com/1272180
- https://bugzilla.suse.com/1272183
- https://bugzilla.suse.com/1272207
- https://bugzilla.suse.com/1272242
- https://bugzilla.suse.com/1272263
- https://bugzilla.suse.com/1272268
- https://bugzilla.suse.com/1272282
- https://bugzilla.suse.com/1272466
- https://bugzilla.suse.com/1272468
- https://bugzilla.suse.com/1272573
- https://bugzilla.suse.com/1272607
- https://bugzilla.suse.com/1272665
- https://bugzilla.suse.com/1272678
- https://bugzilla.suse.com/1272693
- https://bugzilla.suse.com/1272694
- https://bugzilla.suse.com/1272836
- https://bugzilla.suse.com/1272855
- https://bugzilla.suse.com/1272865
- https://bugzilla.suse.com/1272904
- https://bugzilla.suse.com/1272907
- https://bugzilla.suse.com/1272918
- https://bugzilla.suse.com/1273004
- https://bugzilla.suse.com/1273035
- https://bugzilla.suse.com/1273231
- https://bugzilla.suse.com/1274072
- https://www.suse.com/security/cve/CVE-2023-2058
- https://www.suse.com/security/cve/CVE-2025-54518
- https://www.suse.com/security/cve/CVE-2026-31431
- https://www.suse.com/security/cve/CVE-2026-31482
- https://www.suse.com/security/cve/CVE-2026-31483
- https://www.suse.com/security/cve/CVE-2026-31542
- https://www.suse.com/security/cve/CVE-2026-31598
- https://www.suse.com/security/cve/CVE-2026-31628
- https://www.suse.com/security/cve/CVE-2026-31759
- https://www.suse.com/security/cve/CVE-2026-43033
- https://www.suse.com/security/cve/CVE-2026-43046
- https://www.suse.com/security/cve/CVE-2026-43056
- https://www.suse.com/security/cve/CVE-2026-43276
- https://www.suse.com/security/cve/CVE-2026-43440
- https://www.suse.com/security/cve/CVE-2026-43475
- https://www.suse.com/security/cve/CVE-2026-45904
- https://www.suse.com/security/cve/CVE-2026-46056
- https://www.suse.com/security/cve/CVE-2026-46080
- https://www.suse.com/security/cve/CVE-2026-46084
- https://www.suse.com/security/cve/CVE-2026-46109
- https://www.suse.com/security/cve/CVE-2026-46117
- https://www.suse.com/security/cve/CVE-2026-46126
- https://www.suse.com/security/cve/CVE-2026-46144
- https://www.suse.com/security/cve/CVE-2026-46145
- https://www.suse.com/security/cve/CVE-2026-46174
- https://www.suse.com/security/cve/CVE-2026-46193
- https://www.suse.com/security/cve/CVE-2026-46243
- https://www.suse.com/security/cve/CVE-2026-46323
- https://www.suse.com/security/cve/CVE-2026-46324
- https://www.suse.com/security/cve/CVE-2026-46333
- https://www.suse.com/security/cve/CVE-2026-52967
- https://www.suse.com/security/cve/CVE-2026-52986
- https://www.suse.com/security/cve/CVE-2026-53050
- https://www.suse.com/security/cve/CVE-2026-53129
- https://www.suse.com/security/cve/CVE-2026-53131
- https://www.suse.com/security/cve/CVE-2026-53177
- https://www.suse.com/security/cve/CVE-2026-53224
- https://www.suse.com/security/cve/CVE-2026-53246
- https://www.suse.com/security/cve/CVE-2026-53250
- https://www.suse.com/security/cve/CVE-2026-53262
- https://www.suse.com/security/cve/CVE-2026-53267
- https://www.suse.com/security/cve/CVE-2026-53297
- https://www.suse.com/security/cve/CVE-2026-53324
- https://www.suse.com/security/cve/CVE-2026-53354
- https://www.suse.com/security/cve/CVE-2026-53375
- https://www.suse.com/security/cve/CVE-2026-53388
- https://www.suse.com/security/cve/CVE-2026-53391
- https://www.suse.com/security/cve/CVE-2026-53402
- https://www.suse.com/security/cve/CVE-2026-63794
- https://www.suse.com/security/cve/CVE-2026-63802
- https://www.suse.com/security/cve/CVE-2026-63806
- https://www.suse.com/security/cve/CVE-2026-63807
- https://www.suse.com/security/cve/CVE-2026-63824
- https://www.suse.com/security/cve/CVE-2026-63826
- https://www.suse.com/security/cve/CVE-2026-63829
- https://www.suse.com/security/cve/CVE-2026-63884
- https://www.suse.com/security/cve/CVE-2026-63893
- https://www.suse.com/security/cve/CVE-2026-63912
- https://www.suse.com/security/cve/CVE-2026-63917
- https://www.suse.com/security/cve/CVE-2026-63919
- https://www.suse.com/security/cve/CVE-2026-63921
- https://www.suse.com/security/cve/CVE-2026-63922
- https://www.suse.com/security/cve/CVE-2026-63924
- https://www.suse.com/security/cve/CVE-2026-63946
- https://www.suse.com/security/cve/CVE-2026-63952
- https://www.suse.com/security/cve/CVE-2026-63968
- https://www.suse.com/security/cve/CVE-2026-63971
- https://www.suse.com/security/cve/CVE-2026-63975
- https://www.suse.com/security/cve/CVE-2026-63984
- https://www.suse.com/security/cve/CVE-2026-63994
- https://www.suse.com/security/cve/CVE-2026-64106
- https://www.suse.com/security/cve/CVE-2026-64189
- https://www.suse.com/security/cve/CVE-2026-64530
- https://www.suse.com/security/cve/CVE-2026-64560
- https://www.suse.com/security/cve/CVE-2026-64561
- https://www.suse.com/security/cve/CVE-2026-64564
- https://www.suse.com/security/cve/CVE-2026-64600
- https://www.suse.com/support/update/announcement/2026/suse-su-20263602-1/